CVE-2013-1167: Path Traversal
Cisco IOS XE 3.2 through 3.4 before 3.4.2S, and 3.5, on 1000 series Aggregation Services Routers (ASR), when bridge domain interface (BDI) is enabled, allows remote attackers to cause a denial of service (card reload) via packets that are not properly handled during the processing of encapsulation, aka Bug ID CSCtt11558.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-1167?
CVE-2013-1167 is classified as a high severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2013-1167?
To remediate CVE-2013-1167, upgrade Cisco IOS XE to version 3.4.2S or later.
Which devices are affected by CVE-2013-1167?
CVE-2013-1167 affects Cisco 1000 series Aggregation Services Routers (ASR) running specific versions of Cisco IOS XE.
What type of vulnerability is CVE-2013-1167?
CVE-2013-1167 is a denial of service vulnerability that can lead to card reloads in affected devices.
Can CVE-2013-1167 be exploited remotely?
Yes, CVE-2013-1167 can be exploited remotely by sending specially crafted packets to the affected devices.